peter bassill · operator
$ cve CVE-2004-0933 JSON

CVE-2004-0933 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 20.9% (pctl 97)

Patch early

A public exploit exists.

Description

Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS20.85% — more likely to be exploited than 97% of all CVEs
On CISA KEVno
Public exploityes
Published2005-01-27
Last modified2026-06-16

Affected (23)

VendorProduct
archive ziparchive zip
broadcombrightstor arcserve backup
broadcometrust antivirus
broadcometrust antivirus gateway
broadcometrust ez antivirus
broadcometrust ez armor
broadcometrust intrusion detection
broadcometrust secure content manager
broadcominoculateit
caetrust antivirus
caetrust secure content manager
eset softwarenod32 antivirus
gentoolinux
kaspersky labkaspersky anti-virus
mandrakesoftmandrake linux
mcafeeantivirus engine
rav antivirusrav antivirus desktop
rav antivirusrav antivirus for file servers
rav antivirusrav antivirus for mail servers
sophossophos anti-virus
sophossophos puremessage anti-virus
sophossophos small business suite
susesuse linux

Public exploits

SourceTitleDate
exploit-dbMultiple AntiVirus - '.zip' Detection Bypass2004-11-14

References

→ the Explorer  ·  watch your stack  ·  NVD